Trusted Design

Android banking trojan as Flash Player and bypasses 2FA

概要

Active users of mobile banking apps should be aware of a new Android banking trojan campaign targeting customers of large banks in Australia, New Zealand and Turkey. The banking malware, detected by ESET security products as Android/Spy.Agent.SI, can steal login credentials from 20 mobile banking apps.The list of target banks includes the largest banks in each of the three target countries (A full list can be found in the final section of this article). Thanks to its ability to intercept SMS communications, the malware is also able to bypass SMS-based two-factor authentication.

Created: 2026-02-23

Indicators

Indicatorsは見つかっていない。

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

FIN7

Score: 13.31
Matched TTPs:
  • T1674 - Input Injection
  • T1564.001 - Hidden Files and Directories
  • T1008 - Fallback Channels
  • T1078.003 - Local Accounts
MITREへのリンク →

Contagious Interview

Score: 14.12
Matched TTPs:
  • T1657 - Financial Theft
  • T1543.001 - Launch Agent
  • T1547.013 - XDG Autostart Entries
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Kimsuky

Score: 20.69
Matched TTPs:
  • T1657 - Financial Theft
  • T1055.012 - Process Hollowing
  • T1218.010 - Regsvr32
  • T1111 - Multi-Factor Authentication Interception
  • T1588.003 - Code Signing Certificates
  • T1680 - Local Storage Discovery
  • T1078.003 - Local Accounts
MITREへのリンク →

FIN13

Score: 12.07
Matched TTPs:
  • T1657 - Financial Theft
  • T1564.001 - Hidden Files and Directories
  • T1003.003 - NTDS
  • T1556 - Modify Authentication Process
MITREへのリンク →

Storm-0501

Score: 5.27
Matched TTPs:
  • T1657 - Financial Theft
  • T1218.010 - Regsvr32
MITREへのリンク →

Scattered Spider

Score: 4.86
Matched TTPs:
  • T1657 - Financial Theft
  • T1003.003 - NTDS
MITREへのリンク →

Medusa Group

Score: 4.86
Matched TTPs:
  • T1657 - Financial Theft
  • T1003.003 - NTDS
MITREへのリンク →

Play

Score: 5.19
Matched TTPs:
  • T1657 - Financial Theft
  • T1078.003 - Local Accounts
MITREへのリンク →

UNC3886

Score: 6.59
Matched TTPs:
  • T1027.005 - Indicator Removal from Tools
  • T1008 - Fallback Channels
MITREへのリンク →

Patchwork

Score: 9.14
Matched TTPs:
  • T1027.005 - Indicator Removal from Tools
  • T1055.012 - Process Hollowing
  • T1680 - Local Storage Discovery
MITREへのリンク →

Deep Panda

Score: 5.90
Matched TTPs:
  • T1027.005 - Indicator Removal from Tools
  • T1218.010 - Regsvr32
MITREへのリンク →

GALLIUM

Score: 3.15
Matched TTPs:
  • T1027.005 - Indicator Removal from Tools
MITREへのリンク →

OilRig

Score: 15.89
Matched TTPs:
  • T1027.005 - Indicator Removal from Tools
  • T1555.004 - Windows Credential Manager
  • T1588.003 - Code Signing Certificates
  • T1008 - Fallback Channels
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Turla

Score: 9.44
Matched TTPs:
  • T1027.005 - Indicator Removal from Tools
  • T1555.004 - Windows Credential Manager
  • T1078.003 - Local Accounts
MITREへのリンク →

APT3

Score: 3.15
Matched TTPs:
  • T1027.005 - Indicator Removal from Tools
MITREへのリンク →

Gorgon Group

Score: 3.15
Matched TTPs:
  • T1055.012 - Process Hollowing
MITREへのリンク →

Threat Group-3390

Score: 6.30
Matched TTPs:
  • T1055.012 - Process Hollowing
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

BlackByte

Score: 3.15
Matched TTPs:
  • T1055.012 - Process Hollowing
MITREへのリンク →

TA2541

Score: 3.15
Matched TTPs:
  • T1055.012 - Process Hollowing
MITREへのリンク →

menuPass

Score: 5.49
Matched TTPs:
  • T1055.012 - Process Hollowing
  • T1003.003 - NTDS
MITREへのリンク →

Leviathan

Score: 6.19
Matched TTPs:
  • T1218.010 - Regsvr32
  • T1589.001 - Credentials
MITREへのリンク →

APT32

Score: 8.08
Matched TTPs:
  • T1218.010 - Regsvr32
  • T1564.001 - Hidden Files and Directories
  • T1078.003 - Local Accounts
MITREへのリンク →

APT28

Score: 16.71
Matched TTPs:
  • T1589.001 - Credentials
  • T1564.001 - Hidden Files and Directories
  • T1003.003 - NTDS
  • T1550.001 - Application Access Token
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

Magic Hound

Score: 5.96
Matched TTPs:
  • T1589.001 - Credentials
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

LAPSUS$

Score: 9.40
Matched TTPs:
  • T1589.001 - Credentials
  • T1111 - Multi-Factor Authentication Interception
  • T1003.003 - NTDS
MITREへのリンク →

Chimera

Score: 12.23
Matched TTPs:
  • T1589.001 - Credentials
  • T1111 - Multi-Factor Authentication Interception
  • T1003.003 - NTDS
  • T1680 - Local Storage Discovery
MITREへのリンク →

Stealth Falcon

Score: 3.62
Matched TTPs:
  • T1555.004 - Windows Credential Manager
MITREへのリンク →

Wizard Spider

Score: 9.11
Matched TTPs:
  • T1555.004 - Windows Credential Manager
  • T1588.003 - Code Signing Certificates
  • T1003.003 - NTDS
MITREへのリンク →

APT42

Score: 3.62
Matched TTPs:
  • T1111 - Multi-Factor Authentication Interception
MITREへのリンク →

Equation

Score: 4.13
Matched TTPs:
  • T1564.005 - Hidden File System
MITREへのリンク →

Strider

Score: 4.13
Matched TTPs:
  • T1564.005 - Hidden File System
MITREへのリンク →

BlackTech

Score: 3.15
Matched TTPs:
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

FIN8

Score: 3.15
Matched TTPs:
  • T1588.003 - Code Signing Certificates
MITREへのリンク →

Mustang Panda

Score: 12.29
Matched TTPs:
  • T1588.003 - Code Signing Certificates
  • T1027.007 - Dynamic API Resolution
  • T1564.001 - Hidden Files and Directories
  • T1003.003 - NTDS
MITREへのリンク →

Lazarus Group

Score: 15.59
Matched TTPs:
  • T1027.007 - Dynamic API Resolution
  • T1564.001 - Hidden Files and Directories
  • T1008 - Fallback Channels
  • T1680 - Local Storage Discovery
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Tropic Trooper

Score: 8.17
Matched TTPs:
  • T1564.001 - Hidden Files and Directories
  • T1680 - Local Storage Discovery
  • T1078.003 - Local Accounts
MITREへのリンク →

HAFNIUM

Score: 11.81
Matched TTPs:
  • T1564.001 - Hidden Files and Directories
  • T1003.003 - NTDS
  • T1550.001 - Application Access Token
  • T1078.003 - Local Accounts
MITREへのリンク →

FIN6

Score: 4.86
Matched TTPs:
  • T1003.003 - NTDS
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Volt Typhoon

Score: 5.17
Matched TTPs:
  • T1003.003 - NTDS
  • T1680 - Local Storage Discovery
MITREへのリンク →

APT41

Score: 5.78
Matched TTPs:
  • T1003.003 - NTDS
  • T1008 - Fallback Channels
MITREへのリンク →

ToddyCat

Score: 5.36
Matched TTPs:
  • T1680 - Local Storage Discovery
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

APT29

Score: 5.19
Matched TTPs:
  • T1566.003 - Spearphishing via Service
  • T1078.003 - Local Accounts
MITREへのリンク →

Velvet Ant

Score: 6.80
Matched TTPs:
  • T1078.003 - Local Accounts
  • T1211 - Exploitation for Defense Evasion
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

Kimsuky

Score: 0.76
Matched TTPs:
  • T1218.010 - Regsvr32
  • T1111 - Multi-Factor Authentication Interception
  • T1657 - Financial Theft
  • T1680 - Local Storage Discovery
  • T1588.003 - Code Signing Certificates
  • T1078.003 - Local Accounts
  • T1055.012 - Process Hollowing
MITREへのリンク →

APT28

Score: 0.66
Matched TTPs:
  • T1550.001 - Application Access Token
  • T1211 - Exploitation for Defense Evasion
  • T1564.001 - Hidden Files and Directories
  • T1003.003 - NTDS
  • T1589.001 - Credentials
MITREへのリンク →

OilRig

Score: 0.61
Matched TTPs:
  • T1027.005 - Indicator Removal from Tools
  • T1566.003 - Spearphishing via Service
  • T1555.004 - Windows Credential Manager
  • T1588.003 - Code Signing Certificates
  • T1008 - Fallback Channels
MITREへのリンク →

FIN7

Score: 0.61
Matched TTPs:
  • T1674 - Input Injection
  • T1564.001 - Hidden Files and Directories
  • T1008 - Fallback Channels
  • T1078.003 - Local Accounts
MITREへのリンク →

Lazarus Group

Score: 0.60
Matched TTPs:
  • T1027.007 - Dynamic API Resolution
  • T1680 - Local Storage Discovery
  • T1566.003 - Spearphishing via Service
  • T1564.001 - Hidden Files and Directories
  • T1008 - Fallback Channels
MITREへのリンク →

Contagious Interview

Score: 0.55
Matched TTPs:
  • T1543.001 - Launch Agent
  • T1657 - Financial Theft
  • T1547.013 - XDG Autostart Entries
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る